Trend Micro Titanium Maximum Security TMTDI.SYS Privilege Escalation Exploit

This module exploits a privilege escalation vulnerability in Trend Micro Titanium Maximum Security tmtdi.sys driver. The vulnerable driver trusts a dword passed from user mode via IOCTL 0x220404, and interprets it as a function pointer without performing validations. This vulnerability allows unprivileged local users to execute code with SYSTEM privileges.
Exploit type: 
Platform: 
Vulnerabilty ID: 
NOCVE-9999-45910
Product Version: 
10.5
Released Date: 
Tuesday, November 9, 2010 - 00:00